#1620: Update prelude-manager in F-11 final to 0.9.14.2-3

Fedora Release Engineering rel-eng at fedoraproject.org
Thu Apr 23 21:24:49 UTC 2009


#1620: Update prelude-manager in F-11 final to 0.9.14.2-3
--------------------+-------------------------------------------------------
 Reporter:  sgrubb  |       Owner:  rel-eng at lists.fedoraproject.org
     Type:  task    |      Status:  new                            
Milestone:          |   Component:  koji                           
 Keywords:          |  
--------------------+-------------------------------------------------------
 Further review of the prelude packages turned up one more package that has
 a configuration file that would contain the SQL database account and
 password - which is world readable. The ramifications of not updating the
 package is that an attacker could erase intrusion events from the
 database. The fix for this package was to add some explicit %attr tags to
 the files section of the spec file - no code was changed.

-- 
Ticket URL: <https://fedorahosted.org/rel-eng/ticket/1620>
Fedora Release Engineering <http://fedorahosted.org/rel-eng>
Release Engineering for the Fedora Project


More information about the rel-eng mailing list